MidnightBSD

Advisories for ralf_s._engelschall

CVE-1999-1437 HIGH

ePerl 2.2.12 allows remote attackers to read arbitrary files and possibly execute certain commands by specifying a full pathname of the target file as an argument to bar.phtml.

CVSS 2.0

Severity: HIGH

Problem Type: NVD-CWE-Other,

Products Affected

Vendor Product Version
ralf_s._engelschall eperl 2.2.12
CVE-2001-0458 HIGH

Multiple buffer overflows in ePerl before 2.2.14-0.7 allow local and remote attackers to execute arbitrary commands.

CVSS 2.0

Severity: HIGH

Problem Type: NVD-CWE-Other,

Products Affected

Vendor Product Version
debian debian_linux 2.2
ralf_s._engelschall eperl 2.2.13
ralf_s._engelschall eperl 2.2.12
suse suse_linux 6.3
suse suse_linux 6.4
suse suse_linux 7.1
mandrakesoft mandrake_linux 7.2
suse suse_linux 7.0
mandrakesoft mandrake_linux 7.1
CVE-2001-0733 HIGH

The #sinclude directive in Embedded Perl (ePerl) 2.2.14 and earlier allows a remote attacker to execute arbitrary code by modifying the 'sinclude' file to point to another file that contains a #include directive that references a file that contains the code.

CVSS 2.0

Severity: HIGH

Problem Type: NVD-CWE-Other,

Products Affected

Vendor Product Version
ralf_s._engelschall eperl 2.2
ralf_s._engelschall eperl 2.2.13
ralf_s._engelschall eperl 2.2.4
ralf_s._engelschall eperl 2.2.6
ralf_s._engelschall eperl 2.2.12
ralf_s._engelschall eperl 2.2.10
ralf_s._engelschall eperl 2.2.1
ralf_s._engelschall eperl 2.0.2
ralf_s._engelschall eperl *
ralf_s._engelschall eperl 2.0.1
ralf_s._engelschall eperl 2.2.3
ralf_s._engelschall eperl 2.1.2
ralf_s._engelschall eperl 2.2.2
ralf_s._engelschall eperl 2.0
ralf_s._engelschall eperl 2.1
ralf_s._engelschall eperl 2.2.9
ralf_s._engelschall eperl 2.1.1
ralf_s._engelschall eperl 2.2.7
ralf_s._engelschall eperl 2.2.11
ralf_s._engelschall eperl 2.0.3
ralf_s._engelschall eperl 2.2.8
ralf_s._engelschall eperl 2.2.5